
CVE-2025-69981 FUXA v1.2.7 contains an Unrestricted File Upload vulnerability in the `/api/upload` API endpoint. The endpoint lacks authentication mechanisms, allowing unauthenticat… https://www.cve.org/CVERecord?id=CVE-2025-69981
Post summary
The post announces an unrestricted file upload flaw in FUXA v1.2.7's `/api/upload` endpoint, noting that the endpoint lacks authentication, but provides no evidence of exploits or patches.
